Common interfaces & sepolicies for tensor-based Google Pixel devices
sepolicy for android.hardware.secure_element-service.thales 08-26 12:49:43.959 343 343 E SELinux : avc: denied { add } for pid=706 uid=1068 name=android.hardware.secure_element.ISecureElement/eSE1 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:hal_secure_element_service:s0 tclass=service_manager permissive=1 08-26 12:49:43.936 706 706 I android.hardwar: type=1400 audit(0.0:9): avc: denied { call } for scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:r:servicemanager:s0 tclass=binder permissive=1 08-26 12:49:43.936 706 706 I android.hardwar: type=1400 audit(0.0:10): avc: denied { transfer } for scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:r:servicemanager:s0 tclass=binder permissive=1 08-26 12:49:59.904 1 1 I /system/bin/init: type=1107 audit(0.0:139): uid=0 auid=4294967295 ses=4294967295 subj=u:r:init:s0 msg='avc: denied { set } for property=persist.vendor.se.reset pid=706 uid=1068 gid=1068 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:vendor_default_prop:s0 tclass=property_service permissive=1' 08-26 12:50:12.124 706 706 I android.hardwar: type=1400 audit(0.0:461): avc: denied { read write } for name="st54spi" dev="tmpfs" ino=1552 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:st54spi_device:s0 tclass=chr_file permissive=1 08-26 12:50:12.124 706 706 I android.hardwar: type=1400 audit(0.0:462): avc: denied { open } for path="/dev/st54spi" dev="tmpfs" ino=1552 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:st54spi_device:s0 tclass=chr_file permissive=1 08-26 16:33:44.332 737 737 I android.hardwar: type=1400 audit(0.0:959): avc: denied { read write } for name="st21nfc" dev="tmpfs" ino=1550 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:nfc_device:s0 tclass=chr_file permissive=1 08-26 16:33:44.332 737 737 I android.hardwar: type=1400 audit(0.0:960): avc: denied { open } for path="/dev/st21nfc" dev="tmpfs" ino=1550 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:nfc_device:s0 tclass=chr_file permissive=1 08-26 16:33:44.332 737 737 I android.hardwar: type=1400 audit(0.0:961): avc: denied { ioctl } for path="/dev/st21nfc" dev="tmpfs" ino=1550 ioctlcmd=0xea05 scontext=u:r:hal_secure_element_st54spi_aidl:s0 tcontext=u:object_r:nfc_device:s0 tclass=chr_file permissive=1 Flag: EXEMPT NDK Bug: 361093024 Test: manual Change-Id: I1f3aebc9894de9f3410f2031e2b99e07d4060fa5 |
||
---|---|---|
aoc | ||
audio | ||
battery_mitigation | ||
bcmbt | ||
betterbug | ||
bootctrl | ||
camera | ||
chre | ||
dauntless | ||
display | ||
display_logbuffer | ||
edgetpu | ||
fingerprint | ||
gear | ||
gps | ||
gpu | ||
gs_watchdogd | ||
gxp | ||
gyotaku_app | ||
insmod | ||
led | ||
mediacodec | ||
misc_writer | ||
modem | ||
mte | ||
nfc | ||
pcie | ||
performance | ||
pixel_metrics | ||
pixel_ril | ||
pixelsupport | ||
power | ||
powerstats | ||
radio | ||
ramdump_and_coredump | ||
recorder | ||
sensors | ||
sepolicy | ||
soc | ||
sota_app | ||
storage | ||
thermal | ||
touch | ||
trusty | ||
tts | ||
umfw_stat | ||
widevine | ||
wireless_charger | ||
wlan | ||
Android.bp | ||
device.mk | ||
FSTAB_OWNERS | ||
MK_OWNERS | ||
NOTICE | ||
OWNERS | ||
README.txt |
Please refer to go/pixel-recycle to modularize your code in this space.